Principal, IT Audit - 461 EN
Export Development Canada | Exportation et développement Canada · CA
7 hours agoImpress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Principal, IT Audit - 461 EN role.
Rezi rewrites your resume against Export Development Canada | Exportation et développement Canada's job description. Free.

Tailor your resume to this Principal, IT Audit - 461 EN role.
Rezi rewrites your resume against Export Development Canada | Exportation et développement Canada's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Principal, IT Audit - 461 EN posting at Export Development Canada | Exportation et développement Canada — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Principal, IT Audit - 461 EN posting at Export Development Canada | Exportation et développement Canada — free, in seconds.
About the Role
The Principal, IT Audit is a senior individual contributor role responsible for leading and executing complex, high-risk IT audit engagements. The role combines hands-on audit delivery with leadership through expertise, judgment, and influence, ensuring audits are risk-focused, high-quality, and impactful for senior management and the Audit Committee.
Responsibilities
- Lead and deliver complex IT audits from start to finish, serving as the engagement lead ensuring risk focus, quality, and value.
- Perform hands-on audit work in the most complex and higher-risk areas, including assessing risks, evaluating controls, testing key processes, and forming audit conclusions.
- Define audit scope and approach to focus on critical and emerging technology risks, such as cyber security, cloud services, data and privacy, identity and access management, AI, and third-party technology.
- Guide, review, and challenge audit work performed by Senior Individual Contributors (ICs) to ensure high-quality analysis, sufficient evidence, and sound judgment.
- Develop clear, concise, and impactful audit findings that articulate root causes, risk implications, and meaningful improvement opportunities for senior leadership.
- Prepare and present executive-level audit reports, summaries, and presentations, including material for senior management and the Audit Committee.
- Serve as audit contact for Director and VP-level stakeholders, communicating audit objectives, emerging issues, and conclusions with credibility and clarity.
- Bring a forward-looking perspective to audit work by considering emerging risks, regulatory expectations, and leading industry practices.
- Identify common themes and systemic issues across audits to help inform broader IT risk discussions.
- Support the continuous improvement of IT audit practices, including the use of data analytics and advanced audit techniques.
- Influence audit quality and capability through mentoring, knowledge sharing, and setting expectations.
Requirements
- Bachelor’s degree in information systems, computer science, engineering, or equivalent relevant experience.
- Minimum of 8-10 years of relevant experience in IT audit, IT risk, cybersecurity, technology governance, or technology assurance.
- Demonstrated experience leading audits and managing stakeholders at multiple levels.
- Strong knowledge of modern IT environments including cloud, identity, networks, endpoint security, data platforms, and agile delivery.
- Working familiarity with frameworks and standards (e.g., NIST, CIS Controls, COBIT, ISO 2700x) and alignment to IIA standards.
- Excellent communication skills—able to distill complex technical risks into clear, decision-ready insights.
- Strong organizational and project management skills, including the ability to manage multiple priorities and deliver to timelines.
- A leadership mindset grounded in curiosity, pragmatism, collaboration, and continuous improvement.
- Deep expertise in one or more areas: cybersecurity, cloud security, identity, data governance, third-party risk, or technology resilience.
- Hands-on experience using data analytics tools and techniques (Power BI, ACL/HighBond, IDEA, Python, SQL) to enhance audit testing.
- Practical experience with GenAI use cases for audit (e.g., planning, evidence summarization, control mapping, anomaly detection) with appropriate governance.
- Bilingual (French and English).
- Able to work legally in Canada at the time of application (Canadian Citizens or Permanent Residents).
- Meet the requisite government security screening requirements.
Skills
- IT audit
- IT risk
- cybersecurity
- technology governance
- technology assurance
- cloud
- identity
- networks
- endpoint security
- data platforms
- agile delivery
- NIST
- CIS Controls
- COBIT
- ISO 2700x
- IIA standards
- data analytics
- Power BI
- ACL/HighBond
- IDEA
- Python
- SQL
- GenAI use cases for audit
Location
- Ottawa
- Toronto
- Montreal
Work Type
- Hybrid
- Permanent
Experience Level
- 8-10 years
- Senior
Education Level
- Bachelor’s degree in information systems, computer science, engineering, or equivalent relevant experience.
- Professional certifications (e.g., CISSP, CISM, CRISC, CGEIT, CISA) are strongly preferred.
Salary/Compensations
- $112,006 to $149,341 annually, plus a performance-based incentive.
Benefits
- Competitive compensation & benefits package
- Work-life balance
- Opportunity to help make Canada and the world better through trade
- Hybrid work options
- 3 to 4 weeks paid vacation
- Corporate closure period
- Summer early Friday’s
- No meeting Fridays
- Continuous learning opportunities, including training programs, workshops and language training
- Inclusive culture
- Wellness programs
- Mental health support
- Fitness programs
- Community engagement opportunities
- Relocation assistance
About the Company
- At EDC, we support Canadian businesses to succeed globally.
- We provide the financial tools and expertise they need to explore new markets, reduce risks, all towards the goal of making Canada and the world better through trade.
- As a financial Crown corporation, we offer innovative financial solutions and expert insights to help businesses explore new markets, mitigate risks, and achieve growth.
- The Internal Audit function is comprised of two teams: Internal Audit and CS&R. Both teams provide critical services to our organization (including our subsidiary), customers and stakeholders by consistently applying a risk-based mindset, aligned with the organization’s values and strategic objectives.
- Internal Audit provides independent and objective assurance and advisory services, designed to add value and help the organization achieve its business objectives pertaining to operations, reporting, and compliance with laws and regulations.
- Executes a Quality Assurance and Improvement Program (QAIP) to evaluate and ensure the internal audit function conforms with the Global internal Audit Standards, achieves performance objectives and pursues continuous improvements.
Equal Opportunity
- EDC is committed to Fair Employment Practices.
- EDC is dedicated to fostering employment equity and building a diverse workforce.
- We are committed to creating a safe and inclusive environment that respects people from all cultures, backgrounds, and abilities.
- At EDC, we nurture a culture of inclusion and belonging where everyone has equal opportunity to grow, develop, succeed, and be their truest selves.
- We actively encourage applications from women, Indigenous peoples, visible minorities, persons with disabilities, and members of the 2SLGBTQI+ community.
- EDC recognizes that disclosing the need for accommodations can be a personal matter. Please know that as an organization, we are committed to maintaining confidentiality and ensuring that any accommodations provided are tailored to support your needs.
- Our aim is to ensure you have a comfortable and positive experience throughout the recruitment process, so please do not hesitate to contact us directly for any accommodation requests at accessibility@edc.ca.